diff --git a/.github/workflows/coder.yaml b/.github/workflows/coder.yaml index b0accfb2769ee..734c5ce896278 100644 --- a/.github/workflows/coder.yaml +++ b/.github/workflows/coder.yaml @@ -336,7 +336,7 @@ jobs: gcloud config set project coder-dogfood gcloud config set compute/zone us-central1-a gcloud compute scp ./dist/coder_*_linux_amd64.deb coder:/tmp/coder.deb - gcloud compute ssh coder -- sudo dpkg -i /tmp/coder.deb + gcloud compute ssh coder -- sudo dpkg -i --force-confdef /tmp/coder.deb gcloud compute ssh coder -- sudo systemctl daemon-reload - name: Start diff --git a/coder.service b/coder.service index f777842385fcc..1f6b212cd5cf5 100644 --- a/coder.service +++ b/coder.service @@ -17,7 +17,7 @@ ProtectHome=read-only PrivateTmp=yes PrivateDevices=yes SecureBits=keep-caps -AmbientCapabilities=CAP_IPC_LOCK +AmbientCapabilities=CAP_IPC_LOCK CAP_NET_BIND_SERVICE CapabilityBoundingSet=CAP_SYSLOG CAP_IPC_LOCK NoNewPrivileges=yes ExecStart=/usr/bin/coder start